Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0193 (WordPress)

BugsAlert Home > CVE-2008-0193 (WordPress)
 
 

Cross-site scripting (XSS) vulnerability in wp-db-backup.php in WordPress 2.0.11 and earlier, and possibly 2.1.x through 2.3.x, allows remote attackers to inject arbitrary web script or HTML via the backup parameter in a wp-db-backup.php action to wp-admin/edit.php.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0193

Learn more about CVE-2008-0193 (WordPress)
 
Tags: cve-2008-0193 wordpress

Related Items

      FrSIRT - Spreadsheet for WordPress "ss_id" Remote SQL Injection Vulnerability

      FrSIRT - Fedora Security Update Fixes Firefox Code Execution Vulnerabilities

      Reference Policy 20080702 Released

      Bugtraq: Amber Script 1.0 (show_content.php id) Local File Inclusion Vulnerability

      WORM_SILLY.HG

      FrSIRT - Ubuntu Security Update Fixes Dovecot Security Bypass Vulnerabilities

      WORM_SOLOW.AD

 

Pixel